Additional scan result of Farbar Recovery Scan Tool (x86) Version: 20-07-2015 Ran by akrem at 2015-07-22 14:57:08 Running from C:\Users\akrem\Downloads Boot Mode: Normal ========================================================== ==================== Accounts: ============================= Administrateur (S-1-5-21-810618705-3542997047-1480512222-500 - Administrator - Disabled) akrem (S-1-5-21-810618705-3542997047-1480512222-1000 - Administrator - Enabled) => C:\Users\akrem Invité (S-1-5-21-810618705-3542997047-1480512222-501 - Limited - Disabled) ==================== Security Center ======================== (If an entry is included in the fixlist, it will be removed.) AS: Windows Defender (Enabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46} ==================== Installed Programs ====================== (Only the adware programs with "hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.) Adobe Flash Player 17 ActiveX (HKLM\...\Adobe Flash Player ActiveX) (Version: 17.0.0.134 - Adobe Systems Incorporated) Adobe Flash Player 17 NPAPI (HKLM\...\Adobe Flash Player NPAPI) (Version: 17.0.0.134 - Adobe Systems Incorporated) Adobe Reader X MUI (HKLM\...\{AC76BA86-7AD7-FFFF-7B44-AA0000000001}) (Version: 10.0.0 - Adobe Systems Incorporated) App Lid (HKLM\...\App Lid) (Version: 1.36.01.22 - Lid) <==== ATTENTION AppsHat Mobile Apps (HKU\S-1-5-21-810618705-3542997047-1480512222-1000\...\AppsHat Mobile Apps) (Version: 1.0.0.0 - Somoto Ltd.) <==== ATTENTION Atheros Bluetooth Suite (HKLM\...\{101A497C-7EF6-4001-834D-E5FA1C70FEFA}) (Version: 7.4.0.122 - Atheros) Atheros Client Installation Program (HKLM\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 9.0 - Atheros) Bird's Town (HKLM\...\Bird's Town_is1) (Version: 1.0 - Media Contact LLC) BitTorrent (HKU\S-1-5-21-810618705-3542997047-1480512222-1000\...\BitTorrent) (Version: 7.9.3.40299 - BitTorrent Inc.) Bomber Mario (HKLM\...\Bomber Mario_is1) (Version: 1.0 - Media Contact LLC) Brick Shooter Egypt (HKLM\...\Brick Shooter Egypt_is1) (Version: 1.0 - Media Contact LLC) Chromium (HKU\S-1-5-21-810618705-3542997047-1480512222-1000\...\Chromium) (Version: 45.0.2406.0 - Chromium) Comodo Dragon (HKLM\...\Comodo Dragon) (Version: 33.1.0.1 - Comodo) Compilation I.H.S.V (HKLM\...\Compilation I.H.S.V. version 5.8.2_is1) (Version: 5.8.2 - Patrice Fouquet) Easy Settings (HKLM\...\{17283B95-21A8-4996-97DA-547A48DB266F}) (Version: 1.1 - Samsung Electronics CO., LTD.) Easy Software Manager (HKLM\...\{DE256D8B-D971-456D-BC02-CB64DA24F115}) (Version: 1.2.18.13 - Samsung Electronics CO., LTD.) ETDWare PS/2-X86 10.7.13.1_WHQL (HKLM\...\Elantech) (Version: 10.7.13.1 - ELAN Microelectronic Corp.) File Repair (HKLM\...\File Repair_is1) (Version: - File Repair) Gin Rummy/Video Poker 3.0.8 (HKLM\...\VPRummy_is1) (Version: - ) globalupdate Helper (Version: 1.3.25.0 - globalupdate Inc.) Hidden <==== ATTENTION Google Chrome (HKLM\...\{6A21C1E8-DAC1-3C18-BCDC-2DBB4B352AD8}) (Version: 66.77.16508 - Google, Inc.) Google Update Helper (Version: 1.3.28.1 - Google Inc.) Hidden Green Valley (HKLM\...\Green Valley_is1) (Version: 1.0 - Media Contact LLC) Intel(R) Manageability Engine Firmware Recovery Agent (HKLM\...\{A6C48A9F-694A-4234-B3AA-62590B668927}) (Version: 1.0.0.35342 - Intel Corporation) Intel(R) Management Engine Components (HKLM\...\{65153EA5-8B6E-43B6-857B-C6E4FC25798A}) (Version: 8.0.2.1410 - Intel Corporation) Intel(R) OpenCL CPU Runtime (HKLM\...\{FCB3772C-B7D0-4933-B1A9-3707EBACC573}) (Version: - Intel Corporation) Intel(R) Processor Graphics (HKLM\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 8.15.10.2712 - Intel Corporation) Intel(R) Rapid Storage Technology (HKLM\...\{3E29EE6C-963A-4aae-86C1-DC237C4A49FC}) (Version: 11.0.0.1032 - Intel Corporation) Intel® Trusted Connect Service Client (HKLM\...\{51A66ED3-200E-4147-8D1E-E8D30936FD26}) (Version: 1.23.605.1 - Intel Corporation) Internet Program (HKLM\...\Internet Program) (Version: 2.0.5508.3949 - Internet Program) <==== ATTENTION! istartsurf uninstall (HKLM\...\istartsurf uninstall) (Version: - istartsurf) <==== ATTENTION K-Lite Codec Pack 11.2.8 Full (HKLM\...\KLiteCodecPack_is1) (Version: 11.2.8 - ) Linkey (HKU\S-1-5-21-810618705-3542997047-1480512222-1000\...\Linkey) (Version: 0.0.0.599 - Aztec Media Inc) <==== ATTENTION McAfee Security Scan Plus (HKLM\...\McAfee Security Scan) (Version: 3.8.150.1 - McAfee, Inc.) Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 (HKLM\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation) Monument Builder Statue of Liberty (HKLM\...\Monument Builder Statue of Liberty_is1) (Version: 1.0 - Media Contact LLC) Mozilla Firefox 38.0.5 (x86 fr) (HKLM\...\Mozilla Firefox 38.0.5 (x86 fr)) (Version: 38.0.5 - Mozilla) Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 29.0.1 - Mozilla) Notepad++ (HKLM\...\Notepad++) (Version: 6.7.8.2 - Notepad++ Team) ooVoo (HKLM\...\{FAA7F8FF-3C05-4A61-8F14-D8A6E9ED6623}) (Version: 3.6.5001 - ooVoo LLC.) ooVoo Search App powered by Ask (HKLM\...\{4F564F32-2D53-5000-76A7-A758B70C1D00}) (Version: 12.29.0.1331 - APN, LLC) Opera Stable 30.0.1835.125 (HKLM\...\Opera 30.0.1835.125) (Version: 30.0.1835.125 - Opera Software) Realtek Ethernet Controller Driver (HKLM\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 7.50.1123.2011 - Realtek) Realtek High Definition Audio Driver (HKLM\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.6608 - Realtek Semiconductor Corp.) Settings Manager (HKLM\...\Settings Manager) (Version: 5.0.0.14368 - Aztec Media Inc) <==== ATTENTION Shadow Kings (HKLM\...\Shadow Kings_is1) (Version: 1.0 - Media Contact LLC) Skype™ 7.4 (HKLM\...\{24991BA0-F0EE-44AD-9CC8-5EC50AECF6B7}) (Version: 7.4.102 - Skype Technologies S.A.) SpyHunter 4 (HKLM\...\SpyHunter) (Version: 4.20.9.4533 - Enigma Software Group, LLC) Undelete 360 (HKLM\...\Undelete 360_is1) (Version: - File Recovery Ltd.) uniosAlleis (HKLM\...\{4CEE92A3-9F0C-51AB-ADC0-34EC24AD7B7E}) (Version: - ) <==== ATTENTION UsbFix (HKLM\...\Usbfix) (Version: 7.996 - El Desaparecido - www.usbfix.net - www.sosvirus.net) VLC media player (HKLM\...\VLC media player) (Version: 2.2.1 - VideoLAN) WampServer 2.5 (HKLM\...\WampServer 2_is1) (Version: - Hervé Leclerc (HeL)) WinRAR 5.01 (32-bit) (HKLM\...\WinRAR archiver) (Version: 5.01.0 - win.rar GmbH) Yeti Bubbles (HKLM\...\YetiBubbles_is1) (Version: 1.0 - Media Contact LLC) Youtube Downloader HD v. 2.9.9.20 (HKLM\...\Youtube Downloader HD_is1) (Version: - YoutubeDownloaderHD.com) youtubeadblocker (HKLM\...\{4820778D-AB0D-6D18-C316-52A6A0E1D507}) (Version: - ) <==== ATTENTION ==================== Custom CLSID (Whitelisted): ========================== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) CustomCLSID: HKU\S-1-5-21-810618705-3542997047-1480512222-1000_Classes\CLSID\{0F130AC8-CDF1-4DAA-AA9B-7B4083F49EA4}\InprocServer32 -> C:\Users\akrem\AppData\Local\William Hill Poker\widgetbar\PtContainerUI.dll No File CustomCLSID: HKU\S-1-5-21-810618705-3542997047-1480512222-1000_Classes\CLSID\{492042A2-4432-44A1-9A39-85B2D3C0119E}\InprocServer32 -> C:\Users\akrem\AppData\Local\William Hill Poker\widgetbar\PtContainerUI.dll No File CustomCLSID: HKU\S-1-5-21-810618705-3542997047-1480512222-1000_Classes\CLSID\{876FA801-2B5E-4201-9E6B-2EF2C05A5C6B}\InprocServer32 -> C:\Users\akrem\AppData\Local\William Hill Poker\widgetbar\WidgetbarAPI.dll No File CustomCLSID: HKU\S-1-5-21-810618705-3542997047-1480512222-1000_Classes\CLSID\{89425F5E-A2BD-44CD-9E4F-F1498522F0E5}\InprocServer32 -> C:\Users\akrem\AppData\Local\William Hill Poker\widgetbar\WidgetbarManagerUI.dll No File CustomCLSID: HKU\S-1-5-21-810618705-3542997047-1480512222-1000_Classes\CLSID\{A2DF06F9-A21A-44A8-8A99-8B9C84F29160}\localserver32 -> C:\Users\akrem\AppData\Local\Chromium\Application\45.0.2406.0\delegate_execute.exe (The Chromium Authors) <==== ATTENTION CustomCLSID: HKU\S-1-5-21-810618705-3542997047-1480512222-1000_Classes\CLSID\{F28C2F70-47DE-4EA5-8F6D-7D1476CD1EF5}\localserver32 -> C:\Users\akrem\AppData\Local\Temp\11B8\temp\8226525869503915118b.exe No File CustomCLSID: HKU\S-1-5-21-810618705-3542997047-1480512222-1000_Classes\CLSID\{F6F8856F-374D-4397-BB1C-80AB57E60529}\InprocServer32 -> C:\Users\akrem\AppData\Local\William Hill Poker\widgetbar\WidgetbarAPI.dll No File ==================== Restore Points ========================= 23-06-2015 18:30:34 Point de contrôle planifié 01-07-2015 20:34:51 Point de contrôle planifié 09-07-2015 01:20:15 Point de contrôle planifié 16-07-2015 04:02:46 Point de contrôle planifié 16-07-2015 16:46:05 Installed Shark007 ADVANCED Codecs. 21-07-2015 21:26:27 Removed Shark007 ADVANCED Codecs. 22-07-2015 13:54:05 Software Removal Tool ==================== Hosts content: ========================== (If needed Hosts: directive could be included in the fixlist to reset Hosts.) 2009-07-14 04:04 - 2015-05-22 12:18 - 00000959 ____N C:\Windows\system32\Drivers\etc\hosts 127.0.0.1 localhost 127.0.0.1 localhost 127.0.0.1 localhost 127.0.0.1 localhost 127.0.0.1 localhost ==================== Scheduled Tasks (Whitelisted) ============= (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) Task: {004B82D0-4BBC-45E1-AFFC-3792EE08436B} - System32\Tasks\SmartSetting => C:\Program Files\Samsung\Easy Settings\SmartSetting.exe [2012-05-02] (Samsung Electronics Co., Ltd.) Task: {106C0F84-4F69-4F66-8399-33DDCD1BD2FA} - System32\Tasks\acdd9e28-6a78-489c-82f9-85f922b00dcf-3 => C:\Program Files\App Lid\acdd9e28-6a78-489c-82f9-85f922b00dcf-3.exe <==== ATTENTION Task: {1376BC49-FBE7-44D0-816F-04613F5DBCCB} - System32\Tasks\Chromium => C:\Users\akrem\AppData\Local\Chromium\Application\45.0.2406.0\Installer\uninstall.exe [2015-05-22] () Task: {159FE88F-586C-4285-B7FE-8E5505A6492E} - System32\Tasks\WLANStartup => C:\Program Files\Samsung\Easy Settings\WLANStartup.exe [2012-04-03] (Samsung Electronics) Task: {1E93ED71-4C9E-41CD-B7C9-A8D9ADC1EBD0} - System32\Tasks\EasyDisplayMgr => C:\Program Files\Samsung\Easy Settings\dmhkcore.exe [2012-05-15] (Samsung Electronics Co., Ltd.) Task: {2066854A-A129-47BE-BB15-F6CB6BA10061} - System32\Tasks\Opera scheduled Autoupdate 1422738866 => C:\Program Files\Opera\launcher.exe [2015-07-10] (Opera Software) Task: {267D7376-DE04-485D-8CAE-B0B6B8E05C70} - System32\Tasks\acdd9e28-6a78-489c-82f9-85f922b00dcf-11 => C:\Program Files\App Lid\acdd9e28-6a78-489c-82f9-85f922b00dcf-11.exe [2015-07-16] (Lid) <==== ATTENTION Task: {288F619A-E49E-4B81-B14F-3BB9B268F2DB} - System32\Tasks\jninnhl => C:\Users\akrem\AppData\Local\Temp\ivdacwm.exe <==== ATTENTION Task: {2AC5BB74-7248-4384-B0A3-25D05EC0B7D4} - System32\Tasks\SpyHunter4Startup => C:\Program Files\Enigma Software Group\SpyHunter\Spyhunter4.exe [2015-07-22] (Enigma Software Group USA, LLC.) Task: {2DC8E6E6-2D23-409F-BF11-0668C1F56C06} - System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon => C:\Program Files\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [2011-11-25] (Intel Corporation) Task: {38E8A432-1166-40B5-BF27-75DF8E303862} - System32\Tasks\klcp_update => C:\Program Files\K-Lite Codec Pack\Tools\CodecTweakTool.exe [2015-07-13] () Task: {3AF4946E-C3C7-4DA5-911A-230726B32134} - System32\Tasks\Reimage Reminder => C:\Program Files\Reimage\Reimage Repair\ReimageReminder.exe <==== ATTENTION Task: {3F9BB102-B6CF-40B7-BFD2-083BB8A9E73F} - System32\Tasks\globalUpdateUpdateTaskMachineUA => C:\Program Files\globalUpdate\Update\globalupdate.exe [2015-07-16] (globalUpdate) <==== ATTENTION Task: {412DF505-67E8-4568-BA84-ED1FDFC1D91B} - System32\Tasks\SCCSpeedBoot => C:\Program Files\Samsung\Easy Settings\SCCSpeedBoot.exe [2012-03-27] (Samsung Electronics Co., Ltd.) Task: {428E84D2-8F34-4518-BA51-98DEE983A30E} - System32\Tasks\acdd9e28-6a78-489c-82f9-85f922b00dcf-6 => C:\Program Files\App Lid\acdd9e28-6a78-489c-82f9-85f922b00dcf-6.exe [2015-07-16] (Lid) <==== ATTENTION Task: {4B0B1E1E-9FD5-40C3-99FE-47CBAAA93DD4} - System32\Tasks\EasyBatteryManager => C:\Program Files\Samsung\Easy Settings\EBM\EasyBatteryMgr4.exe [2011-11-18] (SAMSUNG Electronics co., LTD.) Task: {50DB6EF7-4552-49DB-9990-E07B22515B37} - System32\Tasks\AelousIntern => c:\programdata\{e3ba051e-470f-367a-e3ba-a051e4701479}\8226525869503915118b.exe [2014-06-05] () <==== ATTENTION Task: {50F0B3D2-223B-4322-A3DC-31BAFE237785} - System32\Tasks\acdd9e28-6a78-489c-82f9-85f922b00dcf-1-7 => C:\Program Files\App Lid\acdd9e28-6a78-489c-82f9-85f922b00dcf-1-7.exe <==== ATTENTION Task: {57C6E8FF-EDC9-418D-9272-E6C4C560E5F0} - System32\Tasks\EasySpeedUpManager => C:\Program Files\Samsung\Easy Settings\EasySpeedUpManager.exe [2012-01-31] (Samsung Electronics) Task: {59D7982A-0F08-4F94-A9AA-368064C18BFA} - System32\Tasks\acdd9e28-6a78-489c-82f9-85f922b00dcf-1-6 => C:\Program Files\App Lid\acdd9e28-6a78-489c-82f9-85f922b00dcf-1-6.exe [2015-07-16] (Lid) <==== ATTENTION Task: {5F2DAB25-044B-4E36-B1A0-B7DE47590F1F} - System32\Tasks\{9B07BDFB-FB5D-4FD9-B6D1-24B46B09FB8D} => pcalua.exe -a "C:\Users\akrem\Downloads\films\American Sniper 2014\Lite x264 Codec Pack.exe" -d "C:\Users\akrem\Downloads\films\American Sniper 2014" Task: {67E0E920-2F72-4ECE-8F8A-4DB6A535501B} - System32\Tasks\acdd9e28-6a78-489c-82f9-85f922b00dcf-7 => C:\Program Files\App Lid\acdd9e28-6a78-489c-82f9-85f922b00dcf-7.exe [2015-07-16] (Lid) <==== ATTENTION Task: {6EBBBBD0-11C6-48A0-8480-DD86CB19D96F} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files\Google\Update\GoogleUpdate.exe [2015-06-14] (Google Inc.) Task: {77EFB9F5-8448-4069-A688-758D56C1DFF2} - System32\Tasks\acdd9e28-6a78-489c-82f9-85f922b00dcf-5 => C:\Program Files\App Lid\acdd9e28-6a78-489c-82f9-85f922b00dcf-5.exe <==== ATTENTION Task: {79EC0934-3A0A-4F3C-ABA1-B4B039655F35} - System32\Tasks\acdd9e28-6a78-489c-82f9-85f922b00dcf-10_user => C:\Program Files\App Lid\acdd9e28-6a78-489c-82f9-85f922b00dcf-10.exe [2015-07-16] (Lid) <==== ATTENTION Task: {92E60E4D-B404-4720-B469-AF84A29230F3} - System32\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d => C:\Program Files\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe [2011-11-25] (Intel Corporation) Task: {931136CA-2362-4280-9FBA-70F3284FE89A} - System32\Tasks\Easy Software Manager Agent => C:\Program Files\Samsung\Easy Software Manager\SWMAgent.exe [2012-04-24] (Samsung Electronics CO., LTD.) Task: {93889832-DBA9-4FFC-8322-977906255FFB} - System32\Tasks\ReimageUpdater => C:\Program Files\Reimage\Reimage Protector\ReiGuard.exe [2015-05-19] (Reimage®) <==== ATTENTION Task: {96E81220-458A-4E79-A2E3-FBCA57C13AD2} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files\Google\Update\GoogleUpdate.exe [2015-06-14] (Google Inc.) Task: {A059CFF7-DE8F-4B64-9203-118907C6F3AA} - System32\Tasks\MovieColorEnhancer => C:\Program Files\Samsung\Easy Settings\MovieColorEnhancer.exe [2012-04-25] (Samsung Electronics Co., Ltd.) Task: {ACBAD81E-1A98-4703-8A0B-86454807EA1B} - System32\Tasks\BDAntiCryptoWallTask => C:\Users\akrem\Downloads\BDAntiCryptoWall_Release.exe [2015-06-14] () Task: {B1C0F47E-FA6C-46D4-B132-FDCB5037D5F9} - System32\Tasks\acdd9e28-6a78-489c-82f9-85f922b00dcf-4 => C:\Program Files\App Lid\acdd9e28-6a78-489c-82f9-85f922b00dcf-4.exe <==== ATTENTION Task: {BDB33B0C-10F9-4D8A-9C51-FE0B2F9CA22A} - System32\Tasks\acdd9e28-6a78-489c-82f9-85f922b00dcf-5_user => C:\Program Files\App Lid\acdd9e28-6a78-489c-82f9-85f922b00dcf-5.exe <==== ATTENTION Task: {F1B5B4D3-8CEB-49F2-9E49-E0BF41CE6C59} - System32\Tasks\globalUpdateUpdateTaskMachineCore => C:\Program Files\globalUpdate\Update\globalupdate.exe [2015-07-16] (globalUpdate) <==== ATTENTION Task: {FA6BE4C9-53C8-4D78-BF2F-A49537B74C76} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe [2015-07-07] (Adobe Systems Incorporated) Task: {FE1DD66C-B4A2-4584-9F18-086CDF7C2928} - System32\Tasks\Software Removal Tool post reboot run => C:\Users\akrem\AppData\Local\Temp\BCE.exe <==== ATTENTION (If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.) Task: C:\Windows\Tasks\acdd9e28-6a78-489c-82f9-85f922b00dcf-1-6.job => C:\Program Files\App Lid\acdd9e28-6a78-489c-82f9-85f922b00dcf-1-6.exe <==== ATTENTION Task: C:\Windows\Tasks\acdd9e28-6a78-489c-82f9-85f922b00dcf-1-7.job => C:\Program Files\App Lid\acdd9e28-6a78-489c-82f9-85f922b00dcf-1-7.exe <==== ATTENTION Task: C:\Windows\Tasks\acdd9e28-6a78-489c-82f9-85f922b00dcf-10_user.job => C:\Program Files\App Lid\acdd9e28-6a78-489c-82f9-85f922b00dcf-10.exe <==== ATTENTION Task: C:\Windows\Tasks\acdd9e28-6a78-489c-82f9-85f922b00dcf-11.job => C:\Program Files\App Lid\acdd9e28-6a78-489c-82f9-85f922b00dcf-11.exe <==== ATTENTION Task: C:\Windows\Tasks\acdd9e28-6a78-489c-82f9-85f922b00dcf-3.job => C:\Program Files\App Lid\acdd9e28-6a78-489c-82f9-85f922b00dcf-3.exe <==== ATTENTION Task: C:\Windows\Tasks\acdd9e28-6a78-489c-82f9-85f922b00dcf-4.job => C:\Program Files\App Lid\acdd9e28-6a78-489c-82f9-85f922b00dcf-4.exe <==== ATTENTION Task: C:\Windows\Tasks\acdd9e28-6a78-489c-82f9-85f922b00dcf-5.job => C:\Program Files\App Lid\acdd9e28-6a78-489c-82f9-85f922b00dcf-5.exe <==== ATTENTION Task: C:\Windows\Tasks\acdd9e28-6a78-489c-82f9-85f922b00dcf-5_user.job => C:\Program Files\App Lid\acdd9e28-6a78-489c-82f9-85f922b00dcf-5.exe <==== ATTENTION Task: C:\Windows\Tasks\acdd9e28-6a78-489c-82f9-85f922b00dcf-6.job => C:\Program Files\App Lid\acdd9e28-6a78-489c-82f9-85f922b00dcf-6.exe <==== ATTENTION Task: C:\Windows\Tasks\acdd9e28-6a78-489c-82f9-85f922b00dcf-7.job => C:\Program Files\App Lid\acdd9e28-6a78-489c-82f9-85f922b00dcf-7.exe <==== ATTENTION Task: C:\Windows\Tasks\AelousIntern.job => c:\programdata\{e3ba051e-470f-367a-e3ba-a051e4701479}\8226525869503915118b.exe <==== ATTENTION Task: C:\Windows\Tasks\Chromium.job => 0x010601003DFB9D5A3075D840881DA77A519A777C460016010000000044440000200000000014730F000000000013040000208021DF070700030016000E000E00000060000000500043003A005C00550073006500720073005C0061006B00720065006D005C0041007000700044006100740061005C004C006F00630061006C005C004300680072006F006D00690075006D005C004100500050004C00490043007E0031005C003400350030003200340030007E0031002E0030005C0049004E005300540041004C007E0031005C0055004E0049004E00530054007E0031002E00450058004500000007002F0043006800650063006B0000000000060061006B00720065006D0000000000000008000000000000000000010030000000D8070500020000000000000000000E00A00500003C0000000000000001000000010000000000000000000000 Task: C:\Windows\Tasks\globalUpdateUpdateTaskMachineCore.job => C:\Program Files\globalUpdate\Update\globalupdate.exe <==== ATTENTION Task: C:\Windows\Tasks\globalUpdateUpdateTaskMachineUA.job => C:\Program Files\globalUpdate\Update\globalupdate.exe <==== ATTENTION Task: C:\Windows\Tasks\GoogleUpdateTaskMachineCore.job => C:\Program Files\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\GoogleUpdateTaskMachineUA.job => C:\Program Files\Google\Update\GoogleUpdate.exe Task: C:\Windows\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d-Logon.job => C:\Program Files\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe Task: C:\Windows\Tasks\ISM-UpdateService-4e00205a-2ab1-4423-8f77-cc25b82cde1d.job => C:\Program Files\Intel\Intel(R) ME FW Recovery Agent\bin\Bootstrap.exe ==================== Loaded Modules (Whitelisted) ============== 2014-05-31 21:22 - 2012-06-13 04:15 - 00128280 _____ () C:\Program Files\Intel\Intel(R) Management Engine Components\FWService\IntelMeFWService.exe 2014-05-31 21:33 - 2012-02-13 15:02 - 00031624 _____ () C:\Program Files\Samsung\Easy Settings\SamsungDeviceConfiguration.exe 2015-01-30 18:12 - 2015-07-16 15:26 - 00660760 _____ () C:\ProgramData\6fb1f30a-cea7-4ccf-bff8-acbecbfe46f9\plugincontainer.exe 2015-01-30 19:12 - 2015-07-21 19:29 - 00573208 _____ () C:\Program Files\Common Files\6fb1f30a-cea7-4ccf-bff8-acbecbfe46f9\updater.exe 2015-07-21 00:20 - 2015-07-21 00:20 - 00690456 _____ () C:\ProgramData\6fb1f30a-cea7-4ccf-bff8-acbecbfe46f9\plugins\8\plugin.exe 2015-07-20 18:15 - 2015-07-20 18:15 - 00593176 _____ () C:\ProgramData\6fb1f30a-cea7-4ccf-bff8-acbecbfe46f9\plugins\6\plugin.exe 2015-07-19 11:54 - 2015-07-19 11:54 - 00459544 _____ () C:\ProgramData\6fb1f30a-cea7-4ccf-bff8-acbecbfe46f9\plugins\7\plugin.exe 2015-07-20 22:20 - 2015-07-20 22:20 - 00788248 _____ () C:\ProgramData\6fb1f30a-cea7-4ccf-bff8-acbecbfe46f9\plugins\5\plugin.exe 2015-07-21 00:20 - 2015-07-21 00:20 - 00615192 _____ () C:\ProgramData\6fb1f30a-cea7-4ccf-bff8-acbecbfe46f9\plugins\3\plugin.exe 2014-05-31 21:21 - 2012-02-07 11:39 - 01198872 _____ () C:\Program Files\Intel\Intel(R) Management Engine Components\UNS\ACE.dll 2015-02-11 20:57 - 2015-02-11 20:57 - 00011776 _____ () C:\Users\akrem\AppData\Local\Odqics\loader_u.dll 2014-05-31 21:33 - 2011-02-17 01:03 - 00203776 _____ () C:\Program Files\Samsung\Easy Settings\WinCRT.dll 2014-11-13 16:44 - 2014-10-22 10:11 - 00129040 _____ () C:\Users\akrem\AppData\Local\Linkey\IEExtension\ietlb.dll 2015-02-11 20:55 - 2015-02-11 20:55 - 01924096 _____ () C:\ProgramData\Microsoft\Secure\Icons\SecureIconsProvider.dll 2015-02-11 20:55 - 2015-02-11 20:55 - 01545216 _____ () C:\ProgramData\Microsoft\Secure\Icons\IconsCacheHelper.dll 2015-04-15 22:13 - 2015-04-15 22:13 - 00260608 _____ () C:\Program Files\Notepad++\NppShell_06.dll 2015-02-11 20:58 - 2015-02-11 20:58 - 00011776 _____ () C:\Users\akrem\AppData\Local\Unmedia\loader_u.dll 2012-10-26 08:49 - 2012-10-26 08:49 - 00202752 _____ () C:\Users\akrem\AppData\Local\WebPlayer\AppsHat\WebPlayer.exe 2014-05-31 21:33 - 2006-08-12 12:48 - 00049152 _____ () C:\Program Files\Samsung\Easy Settings\HookDllPS2.dll 2012-03-26 11:33 - 2012-03-26 11:33 - 00094208 _____ () C:\Windows\system32\IccLibDll.dll 2015-01-31 22:56 - 2015-01-31 22:56 - 00561664 _____ () C:\Program Files\uniosAlleis\Lt37e3WGEvA16N.dll 2015-01-31 22:57 - 2015-01-31 22:57 - 00561664 _____ () C:\Program Files\youtubeadblocker\FKrTmdLGqjAEfg.dll 2015-07-16 16:49 - 2015-07-16 16:49 - 00193024 _____ () C:\Program Files\App Lid\4719db72-2883-4f5f-beea-19b230817095.dll 2015-07-15 18:44 - 2015-07-13 23:55 - 01281864 _____ () C:\Program Files\Google\Chrome\Application\43.0.2357.134\libglesv2.dll 2015-07-15 18:44 - 2015-07-13 23:55 - 00080712 _____ () C:\Program Files\Google\Chrome\Application\43.0.2357.134\libegl.dll ==================== Alternate Data Streams (Whitelisted) ========= (If an entry is included in the fixlist, only the ADS will be removed.) ==================== Safe Mode (Whitelisted) =================== (If an item is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.) ==================== EXE Association (Whitelisted) =============== (If an entry is included in the fixlist, the registry item will be restored to default or removed.) ==================== Internet Explorer trusted/restricted =============== (If an entry is included in the fixlist, it will be removed from the registry.) ==================== Other Areas ============================ (Currently there is no automatic fix for this section.) HKU\S-1-5-21-810618705-3542997047-1480512222-1000\Control Panel\Desktop\\Wallpaper -> C:\Users\akrem\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper.jpg DNS Servers: 192.168.1.1 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 2) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1) mpsdrv Firewall Service is not running. MpsSvc Firewall Service is not running. ==================== MSCONFIG/TASK MANAGER disabled items == (Currently there is no automatic fix for this section.) ==================== FirewallRules (Whitelisted) =============== (If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.) FirewallRules: [{A50BAC14-AF20-4E09-9F06-82AAE3165017}] => (Allow) C:\Program Files\Skype\Phone\Skype.exe FirewallRules: [{54658398-D9F3-4AE8-B439-94B1F45BB3CA}] => (Allow) C:\Users\akrem\AppData\Roaming\BitTorrent\BitTorrent.exe FirewallRules: [{E16B10BC-4626-453E-9601-FFDAD890A7B0}] => (Allow) C:\Users\akrem\AppData\Roaming\BitTorrent\BitTorrent.exe FirewallRules: [{EC8F88B6-4064-4DDD-885B-F49A4CC08FB2}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe FirewallRules: [{AA9EEA49-6B25-4E8D-BB8C-B4D73D3CA370}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe FirewallRules: [{E584661B-997E-4F71-8B2A-BBC694BA1336}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe FirewallRules: [{501CF9AC-D83F-48EC-BC3C-00756C312E8D}] => (Allow) C:\Windows\explorer.exe FirewallRules: [{1AB9E18B-6242-4382-B60A-A750923E8E14}] => (Allow) C:\Windows\system32\rundll32.exe FirewallRules: [{37FD5282-822D-4C30-A530-898A1C6CE9FC}] => (Allow) C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [TCP Query User{9C4BBCD9-74DF-4BF0-8E7C-49A1201716FF}C:\wamp\bin\apache\apache2.4.9\bin\httpd.exe] => (Allow) C:\wamp\bin\apache\apache2.4.9\bin\httpd.exe FirewallRules: [UDP Query User{3FA67327-EE91-4E93-97D6-14F31CA331F2}C:\wamp\bin\apache\apache2.4.9\bin\httpd.exe] => (Allow) C:\wamp\bin\apache\apache2.4.9\bin\httpd.exe FirewallRules: [{1DE4D560-7FC9-49A9-A437-C25351343045}] => (Allow) C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{BB942EC1-6383-4E0A-933A-F55498FBBC73}] => (Allow) C:\Users\akrem\AppData\Local\Chromium\Application\chrome.exe FirewallRules: [{1374357F-7C29-4FBC-8EFD-756F390DCD4C}] => (Allow) C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{64E17BC8-32C9-4060-A080-F7AE110268A1}] => (Allow) C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{A0D374DC-1F03-43B6-857C-360025A10DDD}] => (Allow) C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe FirewallRules: [{F81D5B0A-882A-40AD-9C4B-A6FC7F184D34}] => (Allow) C:\Program Files\Dll-Files.com Fixer\DLLFixer.exe ==================== Faulty Device Manager Devices ============= Could not list Devices. Check "winmgmt" service or repair WMI. ==================== Event log errors: ========================= Application errors: ================== Error: (07/22/2015 02:17:32 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante rectordecryptor.exe, version : 2.6.35.0, horodatage : 0x557ec810 Nom du module défaillant : rectordecryptor.exe, version : 2.6.35.0, horodatage : 0x557ec810 Code d’exception : 0x40000015 Décalage d’erreur : 0x00067e7c ID du processus défaillant : 0x5bc Heure de début de l’application défaillante : 0xrectordecryptor.exe0 Chemin d’accès de l’application défaillante : rectordecryptor.exe1 Chemin d’accès du module défaillant: rectordecryptor.exe2 ID de rapport : rectordecryptor.exe3 Error: (07/22/2015 01:55:59 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante SWMAgent.exe, version : 1.2.18.13, horodatage : 0x4f963025 Nom du module défaillant : SWMAgent.exe, version : 1.2.18.13, horodatage : 0x4f963025 Code d’exception : 0x40000015 Décalage d’erreur : 0x0015e17a ID du processus défaillant : 0x14f4 Heure de début de l’application défaillante : 0xSWMAgent.exe0 Chemin d’accès de l’application défaillante : SWMAgent.exe1 Chemin d’accès du module défaillant: SWMAgent.exe2 ID de rapport : SWMAgent.exe3 Error: (07/21/2015 10:11:21 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante SWMAgent.exe, version : 1.2.18.13, horodatage : 0x4f963025 Nom du module défaillant : SWMAgent.exe, version : 1.2.18.13, horodatage : 0x4f963025 Code d’exception : 0x40000015 Décalage d’erreur : 0x0015e17a ID du processus défaillant : 0x1388 Heure de début de l’application défaillante : 0xSWMAgent.exe0 Chemin d’accès de l’application défaillante : SWMAgent.exe1 Chemin d’accès du module défaillant: SWMAgent.exe2 ID de rapport : SWMAgent.exe3 Error: (07/21/2015 09:27:06 PM) (Source: MsiInstaller) (EventID: 11905) (User: akrem-PC) Description: Produit : Shark007 ADVANCED Codecs -- Erreur 1905. Impossible d'annuler l'inscription du module C:\Windows\system32\VSFilter.dll. HRESULT -2147220472. Contactez votre service de support technique. Error: (07/21/2015 09:26:58 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante SWMAgent.exe, version : 1.2.18.13, horodatage : 0x4f963025 Nom du module défaillant : SWMAgent.exe, version : 1.2.18.13, horodatage : 0x4f963025 Code d’exception : 0x40000015 Décalage d’erreur : 0x0015e17a ID du processus défaillant : 0xae8 Heure de début de l’application défaillante : 0xSWMAgent.exe0 Chemin d’accès de l’application défaillante : SWMAgent.exe1 Chemin d’accès du module défaillant: SWMAgent.exe2 ID de rapport : SWMAgent.exe3 Error: (07/21/2015 09:22:42 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: La création du contexte d’activation a échoué pour « LAVFilters.Dependencies,type="win32",version="1.0.0.0"1 ». Assembly dépendant LAVFilters.Dependencies,type="win32",version="1.0.0.0" introuvable. Utilisez sxstrace.exe pour un diagnostic détaillé. Error: (07/21/2015 09:22:41 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: La création du contexte d’activation a échoué pour « LAVFilters.Dependencies,type="win32",version="1.0.0.0"1 ». Assembly dépendant LAVFilters.Dependencies,type="win32",version="1.0.0.0" introuvable. Utilisez sxstrace.exe pour un diagnostic détaillé. Error: (07/21/2015 07:43:36 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante SWMAgent.exe, version : 1.2.18.13, horodatage : 0x4f963025 Nom du module défaillant : SWMAgent.exe, version : 1.2.18.13, horodatage : 0x4f963025 Code d’exception : 0x40000015 Décalage d’erreur : 0x0015e17a ID du processus défaillant : 0x13b0 Heure de début de l’application défaillante : 0xSWMAgent.exe0 Chemin d’accès de l’application défaillante : SWMAgent.exe1 Chemin d’accès du module défaillant: SWMAgent.exe2 ID de rapport : SWMAgent.exe3 Error: (07/21/2015 07:31:46 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: Nom de l’application défaillante SWMAgent.exe, version : 1.2.18.13, horodatage : 0x4f963025 Nom du module défaillant : SWMAgent.exe, version : 1.2.18.13, horodatage : 0x4f963025 Code d’exception : 0x40000015 Décalage d’erreur : 0x0015e17a ID du processus défaillant : 0xf14 Heure de début de l’application défaillante : 0xSWMAgent.exe0 Chemin d’accès de l’application défaillante : SWMAgent.exe1 Chemin d’accès du module défaillant: SWMAgent.exe2 ID de rapport : SWMAgent.exe3 Error: (07/20/2015 08:10:38 PM) (Source: SideBySide) (EventID: 35) (User: ) Description: La création du contexte d’activation a échoué pour « Microsoft.VC90.CRT,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.21022.8"1 ». Erreur dans le fichier de manifeste ou de stratégie « Microsoft.VC90.CRT,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.21022.8"2 » à la ligne Microsoft.VC90.CRT,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.21022.8"3. L’identité de composant trouvé dans le manifeste ne correspond pas à celle du composant demandé. La référence est Microsoft.VC90.CRT,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.21022.8". La définition est Microsoft.VC90.CRT,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.21022.8". Utilisez sxstrace.exe pour un diagnostic détaillé. System errors: ============= Error: (07/22/2015 01:45:23 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service a6f52693-6790-4e32-9dcb-2b443fd63939 n’a pas pu démarrer en raison de l’erreur : %%1053 Error: (07/22/2015 01:45:23 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Le dépassement de délai (30000 millisecondes) a été atteint lors de l’attente de la connexion du service a6f52693-6790-4e32-9dcb-2b443fd63939. Error: (07/22/2015 01:45:22 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service f968c55b-0b63-438b-9c90-f66920afe7d9 n’a pas pu démarrer en raison de l’erreur : %%1053 Error: (07/22/2015 01:45:22 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Le dépassement de délai (30000 millisecondes) a été atteint lors de l’attente de la connexion du service f968c55b-0b63-438b-9c90-f66920afe7d9. Error: (07/22/2015 12:11:31 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service a6f52693-6790-4e32-9dcb-2b443fd63939 n’a pas pu démarrer en raison de l’erreur : %%1053 Error: (07/22/2015 12:11:31 AM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Le dépassement de délai (30000 millisecondes) a été atteint lors de l’attente de la connexion du service a6f52693-6790-4e32-9dcb-2b443fd63939. Error: (07/22/2015 12:11:30 AM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service f968c55b-0b63-438b-9c90-f66920afe7d9 n’a pas pu démarrer en raison de l’erreur : %%1053 Error: (07/22/2015 12:11:30 AM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Le dépassement de délai (30000 millisecondes) a été atteint lors de l’attente de la connexion du service f968c55b-0b63-438b-9c90-f66920afe7d9. Error: (07/21/2015 10:06:49 PM) (Source: Service Control Manager) (EventID: 7000) (User: ) Description: Le service a6f52693-6790-4e32-9dcb-2b443fd63939 n’a pas pu démarrer en raison de l’erreur : %%1053 Error: (07/21/2015 10:06:49 PM) (Source: Service Control Manager) (EventID: 7009) (User: ) Description: Le dépassement de délai (30000 millisecondes) a été atteint lors de l’attente de la connexion du service a6f52693-6790-4e32-9dcb-2b443fd63939. Microsoft Office: ========================= Error: (07/22/2015 02:17:32 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: rectordecryptor.exe2.6.35.0557ec810rectordecryptor.exe2.6.35.0557ec8104000001500067e7c5bc01d0c4766c21e08eC:\Users\akrem\Downloads\rectordecryptor.exeC:\Users\akrem\Downloads\rectordecryptor.exe9fffd630-306b-11e5-b471-50b7c358b31a Error: (07/22/2015 01:55:59 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: SWMAgent.exe1.2.18.134f963025SWMAgent.exe1.2.18.134f963025400000150015e17a14f401d0c474dea9d919C:\Program Files\Samsung\Easy Software Manager\SWMAgent.exeC:\Program Files\Samsung\Easy Software Manager\SWMAgent.exe9d9498b9-3068-11e5-b471-50b7c358b31a Error: (07/21/2015 10:11:21 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: SWMAgent.exe1.2.18.134f963025SWMAgent.exe1.2.18.134f963025400000150015e17a138801d0c3f0d86afca1C:\Program Files\Samsung\Easy Software Manager\SWMAgent.exeC:\Program Files\Samsung\Easy Software Manager\SWMAgent.exea6ae6b53-2fe4-11e5-abaa-50b7c358b31a Error: (07/21/2015 09:27:06 PM) (Source: MsiInstaller) (EventID: 11905) (User: akrem-PC) Description: Produit : Shark007 ADVANCED Codecs -- Erreur 1905. Impossible d'annuler l'inscription du module C:\Windows\system32\VSFilter.dll. HRESULT -2147220472. Contactez votre service de support technique.(NULL)(NULL)(NULL)(NULL)(NULL) Error: (07/21/2015 09:26:58 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: SWMAgent.exe1.2.18.134f963025SWMAgent.exe1.2.18.134f963025400000150015e17aae801d0c3eac7519565C:\Program Files\Samsung\Easy Software Manager\SWMAgent.exeC:\Program Files\Samsung\Easy Software Manager\SWMAgent.exe73d43570-2fde-11e5-b4e1-50b7c358b31a Error: (07/21/2015 09:22:42 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: LAVFilters.Dependencies,type="win32",version="1.0.0.0"C:\Windows\system32\LAVSplitter.ax Error: (07/21/2015 09:22:41 PM) (Source: SideBySide) (EventID: 33) (User: ) Description: LAVFilters.Dependencies,type="win32",version="1.0.0.0"C:\Windows\system32\LAVAudio.ax Error: (07/21/2015 07:43:36 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: SWMAgent.exe1.2.18.134f963025SWMAgent.exe1.2.18.134f963025400000150015e17a13b001d0c3dc2c8ea7a9C:\Program Files\Samsung\Easy Software Manager\SWMAgent.exeC:\Program Files\Samsung\Easy Software Manager\SWMAgent.exe03117466-2fd0-11e5-976b-50b7c358b31a Error: (07/21/2015 07:31:46 PM) (Source: Application Error) (EventID: 1000) (User: ) Description: SWMAgent.exe1.2.18.134f963025SWMAgent.exe1.2.18.134f963025400000150015e17af1401d0c3daad1b73a7C:\Program Files\Samsung\Easy Software Manager\SWMAgent.exeC:\Program Files\Samsung\Easy Software Manager\SWMAgent.exe5b935c06-2fce-11e5-b497-50b7c358b31a Error: (07/20/2015 08:10:38 PM) (Source: SideBySide) (EventID: 35) (User: ) Description: Microsoft.VC90.CRT,processorArchitecture="amd64",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.21022.8"Microsoft.VC90.CRT,processorArchitecture="x86",publicKeyToken="1fc8b3b9a1e18e3b",type="win32",version="9.0.21022.8"c:\program files\Samsung\easy settings\SoundAliveUtilx64.exec:\program files\Samsung\easy settings\Microsoft.VC90.CRT.MANIFEST4 ==================== Memory info =========================== Processor: Intel(R) Pentium(R) CPU B970 @ 2.30GHz Percentage of memory in use: 68% Total physical RAM: 3373.54 MB Available physical RAM: 1058.69 MB Total Virtual: 6745.36 MB Available Virtual: 4321.23 MB ==================== Drives ================================ Drive c: () (Fixed) (Total:416.93 GB) (Free:319.86 GB) NTFS ==================== MBR & Partition Table ================== ==================== End of log ============================